Medical Device Cybersecurity Analyst
Join Intelas, a Compass Healthcare Company. Intelas delivers smarter asset management by blending expert service teams with intelligent, data-driven strategies that help hospitals improve uptime, simplify oversight, and make more informed capital decisions. Our programs support 100% regulatory compliance and drives 98% equipment uptime—so clinicians can focus on care, not equipment issues. We support nearly 4,500 healthcare sites nationwide—from large, campus-based acute care hospitals to system-integrated outpatient clinics. With more than 1.15 million medical devices managed, we provide the clarity and consistency needed in today’s rapidly evolving healthcare environment. Whether you're just starting out or are a seasoned professional, our people-first approach ensures opportunities for continuous growth, development, and fulfillment.
About the role
The Medical Device Cybersecurity Analyst works under the direction of the Cybersecurity Director and supports overall cybersecurity initiatives including defined day-to-day managed services activities. This position responds to cybersecurity alerts, ensures Client KPIs are met, performs audits and risk assessments of medical devices, and provides subject matter expertise. The role requires the ability to navigate real-time cybersecurity tasks and reports to an assigned account. Occasional regional travel is expected.
Responsibilities
- Monitors and responds to comprehensive medical device asset and cybersecurity management platform findings and mitigating steps
- Triage, respond, and assign work orders generated from CMMS cybersecurity module
- Proactively collect the most current MDS2 forms
- Maintain a database of approved patches, firmware upgrades, and MDS2 forms
- Maintains operational security metrics to measure the effectiveness of security controls and identify opportunities for improvement
- Assure compliance with all regulatory standards including patient safety and all relative criteria governing the safe and appropriate use, testing, and management of medical devices
- Complete all required trainings
- Collaborate and work with clients to respond and coordinate mitigating steps and compensating controls on contracted medical devices
- Assist in threat intelligence gathering, monitoring of zero-day exploits, and correlate to clients' CMMS inventory
- Participate and contribute to CEIT Council, client meetings, and assigned committees
- Maintain positive relationships with coworkers, medical staff, vendors, manufacturers, and the general public
- Generate and build bi-weekly, monthly, and quarterly client reports
- Correlate and perform GAP analysis on discovered medical devices with CMMS
- Create security work orders in CMMS and assign to the field as applicable
- Ensure work orders are completed within defined KPIs
- Research and engage OEMs for available approved patches and firmware upgrades
- Assist in the development and implementation of continued best practices and risk management of inventoried connected medical devices
- Perform other duties as assigned that are intrinsic to the successful operation of the business
Requirements
- Associate’s Degree in IT or Biomedical Engineering or equivalent
- Knowledge of healthcare with Computerized Maintenance Management Systems (CMMS)
- Security+ certification preferred, required within three years of employment
- Minimum of two years in a patient care environment
- Minimum of two years of cybersecurity experience
Benefits
- Medical, Dental, and Vision Insurance
- Life Insurance / AD&D
- Disability Insurance
- Retirement Plan
- Flexible Time Off
- Holiday Time Off (varies by site/state)
- Associate Shopping Program
- Health and Wellness Programs
- Discount Marketplace
- Identity Theft Protection
- Pet Insurance
- Commuter Benefits
- Employee Assistance Program
- Flexible Spending Accounts (FSAs)
- Paid Parental Leave
- Personal Leave
Pay
$80,000 - $95,000/year